who would have thought software that was quickly spun up to replace something carefully written over the course of 7 years because tankies would have 0 days
Slop.
For posting all the anonymous reactionary bullshit that you can't post anywhere else.
Rule 1: All posts must include links to the subject matter, and no identifying information should be redacted.
Rule 2: If your source is a reactionary website, please use archive.is instead of linking directly.
Rule 3: No sectarianism.
Rule 4: TERF/SWERFs Not Welcome
Rule 5: No bigotry of any kind, including ironic bigotry.
Rule 6: Do not post fellow hexbears.
Rule 7: Do not individually target federated instances' admins or moderators.
you don't understand, piefed only has the best code. Everyone says so and it even happens so much faster than those dirty tankies. Some say it is the perfect code but please whatever you do don't look at it just imagine the best possible code and that's it.
Here I was thinking the downtime was due to the hosting DC having a fire https://www.datacenterdynamics.com/en/news/northc-data-center-outside-amsterdam-suffers-fire/
Lol. Lmao, even
Even dealing with a security issue the code is shit. Why are they chaining multiple ors in a if single statements
| | |
| -------------------------------------- | ---------------------------------------------------------------------------------------------------------------------- |
| `def is_invalid_get_request_uri(uri):` | |
| | `if current_app.debug:` |
| | `return False` |
| | `try:` |
| | `ip = ipaddress.ip_address(furl(uri).host)` |
| | `except:` |
| | `ip = None` |
| | `` |
| | `if ip:` |
| | `return ip.is_private or ip.is_link_local or ip.is_reserved or ip.is_loopback or ip.is_multicast or ip.is_unspecified` |
| | `return False` |
| | `` |
| | `` |
| | `def is_invalid_post_request_uri(uri):` |
| | `return is_inv` |
https://codeberg.org/rimu/pyfedi/commit/ada8e2ea35ec687000b7e7c2343288d44a219c3a
I mean they weren't given any heads up but had to instantly shut down their servers and figure out what was going on and come up with a solution on the spot. Not that I think piefed is well-made but just publicly posting critical security vulnerabilities is a dick move.
Bare except, too. Not ideal.
Ohhhh that's why they need possibly 24hrs of downtime 😂😂😂😂😂

ha ha
If I was fed the pie, will I be okay or should I get help?
i would suggest forcing fingers down your throat until you upchuck it
Interesting
| 6 hours ago | infosec.pub mod | Deleted post Piefed has some really bad security bugs that p… in cybersecurity@infosec.pub |
Lol wait really? Makes a blog post about burn out, zeroday crashes every piefed instance?
Other than the dev?
